termola.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.paralotnie.atomnet.pl.
MD5:
c674a87a7483535e83efa4d560e8376d

SHA-1:
a6bf05e14db55689ca5e120356292ebf4e29d1c5

SHA-256:
6b42739ddea34822f3de5386d532c459ba14e95a75f0b5aa3c4f258e76f15d12

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
8/25/2025 1:32:05 PM UTC  (today)

File size:
55.5 KB (56,850 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\termola.exe

File PE Metadata
OS bitness:
Win32

CTPH (ssdeep):
768:PjjCzhNTXL6D09QXeL+GTFwUegFkxPj3eLARUntM5w1P6yRW55jdkH8lh9/WUqqT:yHSw9lXmNjuMOtMWP6yQg8R/URF7K4x

Entry point:
4D, 5A, 12, 00, 70, 00, 00, 00, 20, 00, 02, 01, FF, FF, AC, 0E, 80, 00, 00, 00, 10, 00, 59, 0D, 1E, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Code size:
0 Bytes (1 bytes)

The file termola.exe has been seen being distributed by the following URL.

Scan termola.exe - Powered by Reason Core Security